User can create dns record : True
Computers with constrained delegation : []
Control delegations :
{
"OU=Domain Controllers,DC=serval,DC=int": [],
"OU=Domain Computers,DC=serval,DC=int": [],
"OU=Domain Users,DC=serval,DC=int": [],
"OU=Domain Groups,DC=serval,DC=int": [],
"CN=Computers,DC=serval,DC=int": [],
"CN=ForeignSecurityPrincipals,DC=serval,DC=int": [],
"CN=Keys,DC=serval,DC=int": [],
"CN=Managed Service Accounts,DC=serval,DC=int": [],
"CN=Program Data,DC=serval,DC=int": [],
"CN=Users,DC=serval,DC=int": [],
"DC=serval,DC=int": []
}
Group policy folder/file rights :
{
"User can write extended attributes Default Domain Policy": [
"User can be traversed serval.int/Policies/{31B2F340-016D-11D2-945F-00C04FB984F9}/MACHINE/Registry.pol",
"User can be traversed serval.int/Policies/{31B2F340-016D-11D2-945F-00C04FB984F9}/GPT.INI",
"User can be traversed serval.int/Policies/{31B2F340-016D-11D2-945F-00C04FB984F9}/MACHINE/Microsoft/Windows NT/SecEdit/GptTmpl.inf"
],
"User can write extended attributes Default Domain Controllers Policy": [
"User can be traversed serval.int/Policies/{6AC1786C-016F-11D2-945F-00C04fB984F9}/GPT.INI",
"User can be traversed serval.int/Policies/{6AC1786C-016F-11D2-945F-00C04fB984F9}/MACHINE/Microsoft/Windows NT/SecEdit/GptTmpl.inf"
]
}
Privilege Rights :
{
"SeAssignPrimaryTokenPrivilege": [
"Network Service",
"NT Authority (Local Service)"
],
"SeAuditPrivilege": [
"Network Service",
"NT Authority (Local Service)"
],
"SeBackupPrivilege": [
"Server Operators",
"Backup Operators",
"Administrators"
],
"SeBatchLogonRight": [
"Builtin\\Performance Log Users",
"Backup Operators",
"Administrators"
],
"SeChangeNotifyPrivilege": [
"Builtin\\Pre-Windows 2000 Compatible Access",
"Authenticated Users",
"Administrators",
"Network Service",
"NT Authority (Local Service)",
"Everyone"
],
"SeCreatePagefilePrivilege": [
"Administrators"
],
"SeDebugPrivilege": [
"Administrators"
],
"SeIncreaseBasePriorityPrivilege": [
"System Managed Accounts Group",
"Administrators"
],
"SeIncreaseQuotaPrivilege": [
"Administrators",
"Network Service",
"NT Authority (Local Service)"
],
"SeInteractiveLogonRight": [
"Enterprise Domain Controllers",
"Print Operators",
"Server Operators",
"Account Operators",
"Backup Operators",
"Administrators"
],
"SeLoadDriverPrivilege": [
"Print Operators",
"Administrators"
],
"SeMachineAccountPrivilege": [
"Authenticated Users"
],
"SeNetworkLogonRight": [
"Builtin\\Pre-Windows 2000 Compatible Access",
"Enterprise Domain Controllers",
"Authenticated Users",
"Administrators",
"Everyone"
],
"SeProfileSingleProcessPrivilege": [
"Administrators"
],
"SeRemoteShutdownPrivilege": [
"Server Operators",
"Administrators"
],
"SeRestorePrivilege": [
"Server Operators",
"Backup Operators",
"Administrators"
],
"SeSecurityPrivilege": [
"Administrators"
],
"SeShutdownPrivilege": [
"Print Operators",
"Server Operators",
"Backup Operators",
"Administrators"
],
"SeSystemEnvironmentPrivilege": [
"Administrators"
],
"SeSystemProfilePrivilege": [
"S-1-5-80-3139157870-2983391045-3678747466-658725712-1809340420",
"Administrators"
],
"SeSystemTimePrivilege": [
"Server Operators",
"Administrators",
"NT Authority (Local Service)"
],
"SeTakeOwnershipPrivilege": [
"Administrators"
],
"SeUndockPrivilege": [
"Administrators"
],
"SeEnableDelegationPrivilege": [
"Administrators"
]
}
Computers with rbac :[]
HKLM\SYSTEM permissions :
[
{
"User": "Authenticated Users",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": "Read",
"InheritedObjectType": "This key and subkeys"
}
},
{
"User": "Server Operators",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": "Read",
"InheritedObjectType": "This key and subkeys"
}
},
{
"User": "Administrators",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": "Full Control",
"InheritedObjectType": "This key and subkeys"
}
},
{
"User": "System (or Local System)",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": "Full Control",
"InheritedObjectType": "This key and subkeys"
}
},
{
"User": "Creator Owner ID",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": [],
"InheritedObjectType": "Subkeys only"
}
},
{
"User": "All Application Packages",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": "Read",
"InheritedObjectType": "This key and subkeys"
}
},
{
"User": "S-1-15-3-1024-1065365936-1281604716-3511738428-1654721687-432734479-3232135806-4053264122-3456934681",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": "Read",
"InheritedObjectType": "This key and subkeys"
}
}
]
HKLM\SECURITY permissions :
[
{
"User": "System (or Local System)",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": "Full Control",
"InheritedObjectType": "This key and subkeys"
}
},
{
"User": "Administrators",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": [
"Read Control",
"Write DAC"
],
"InheritedObjectType": "This key and subkeys"
}
}
]
HKLM\SAM permissions :
[
{
"User": "Users",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": "Read",
"InheritedObjectType": "This key and subkeys"
}
},
{
"User": "Administrators",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": "Full Control",
"InheritedObjectType": "This key and subkeys"
}
},
{
"User": "System (or Local System)",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": "Full Control",
"InheritedObjectType": "This key and subkeys"
}
},
{
"User": "Creator Owner ID",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": "Full Control",
"InheritedObjectType": "This key and subkeys"
}
},
{
"User": "All Application Packages",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": "Read",
"InheritedObjectType": "This key and subkeys"
}
},
{
"User": "S-1-15-3-1024-1065365936-1281604716-3511738428-1654721687-432734479-3232135806-4053264122-3456934681",
"Permissions": {
"PermissionsType": "ACCESS_ALLOWED_ACE",
"PermissionsValue": "Read",
"InheritedObjectType": "This key and subkeys"
}
}
]
Authentication policy silos :
[]
Trust accounts for the delegation : []